EPSS
Percentile
44.7%
hadoop-hdds-server-scm is vulnerable to authorization bypass. The library does not properly perform authorization checks, allowing an authenticated attacker to execute admin-related SCM commands.
www.openwall.com/lists/oss-security/2021/11/19/3
github.com/apache/ozone/commit/5f046fa1e1da9c8ca9a2e7539e30c1c5a87a17cb
github.com/apache/ozone/pull/2217
mail-archives.apache.org/mod_mbox/ozone-dev/202111.mbox/%3C3c30a7f2-13a4-345e-6c8a-c23a2b937041%40apache.org%3E